nicholasjackson / cnitchLinks
Container Snitch checks running processes under the Docker Engine and alerts if any are found to be running as root
☆78Updated 7 years ago
Alternatives and similar repositories for cnitch
Users that are interested in cnitch are comparing it to the libraries listed below
Sorting:
- Docker authentication plugin to enforce a image pull policy. Whitelist Docker images allowed to be pulled.☆42Updated 7 years ago
- Kubernetes security scanner based on the open-source container vulnerability scanner Trivy.☆23Updated 4 years ago
- Bash wrapper script for Aquasec Microscanner☆61Updated 5 years ago
- Web Application Firewall (WAF) on Kubernetes☆69Updated 3 years ago
- ☆55Updated 7 years ago
- A Kubernetes implementation in bash (srsly)☆17Updated 7 years ago
- The Container Security Book—a free book for practitioners☆83Updated 5 years ago
- Falco container runtime security extras (default rulesets and more)☆49Updated 6 years ago
- A @HashiCorp Vault plugin for authenticating and receiving policies via Slack.☆50Updated 5 years ago
- ⛔️ DEPRECATED Kubernetes operator and CLI tool for encrypting and managing Kubernetes secrets☆65Updated last year
- Use Manifesto to store and query metadata for container images.☆163Updated 6 years ago
- A proxy for docker.sock that enforces access control and isolated privileges☆143Updated 3 years ago
- A magic shim for Docker credential helpers 🪄☆70Updated 3 years ago
- A Terraform module to create and maintain Kubernetes clusters on AWS easily, relying entirely on kops☆38Updated 2 years ago
- A Dockerfile that creates an image with known vulnerabilities.☆49Updated 3 years ago
- Because Clair needs a friend☆31Updated 6 years ago
- A tool to pass Vault secrets to other processes via environment variables.☆33Updated 6 years ago
- API that leverages Clair to scan Docker Registries and Kubernetes Clusters for vulnerabilities☆151Updated 2 years ago
- ☆33Updated 6 years ago
- Experimental CLI that takes a Docker image url and runs it in a Firecracker VM☆65Updated 6 years ago
- Kubernetes security and vulnerability tools and utilities.☆56Updated 4 years ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated 2 weeks ago
- Kubernetes Pod RBAC Breakout☆39Updated 2 years ago
- Simple logger (with rainbows) for Go☆36Updated 4 years ago
- Securely store secrets at rest using Hashicorp Vault☆55Updated 2 years ago
- Automate the initialization and unsealing of HashiCorp Vault on Google Cloud Platform.☆149Updated 6 years ago
- Vulnerability Scanner for Detecting Publicly Disclosed Vulnerabilities in Application Dependencies☆23Updated 6 years ago
- An actuary is a business professional who analyzes the financial consequences of risk.☆80Updated 7 years ago
- Aqua Enterprise scanner as a plug-in vulnerability scanner in the Harbor registry☆37Updated 10 months ago
- kurl: curl for Kubernetes☆38Updated 8 years ago